CVE-2026-1037
- EPSS 0.28%
- Veröffentlicht 18.09.2026 15:52:28
- Zuletzt bearbeitet 18.09.2026 18:17:47
IBM Common Licensing Agent 9.0, Agent 9.0.0.1, Agent 9.0.0.2, ART 9.0, ART 9.0.0.1, and ART 9.0.0.2 is vulnerable to cross-site scripting. This vulnerability allows an unauthenticated attacker to embed arbitrary JavaScript code in the Web UI thus alt...
CVE-2026-1031
- EPSS 0.28%
- Veröffentlicht 18.09.2026 15:51:41
- Zuletzt bearbeitet 19.09.2026 15:16:59
IBM Common Licensing Agent 9.0, Agent 9.0.0.1, Agent 9.0.0.2, ART 9.0, ART 9.0.0.1, and ART 9.0.0.2 is vulnerable to cross-site scripting. This vulnerability allows an unauthenticated attacker to embed arbitrary JavaScript code in the Web UI thus alt...
CVE-2026-1030
- EPSS 0.3%
- Veröffentlicht 18.09.2026 15:51:21
- Zuletzt bearbeitet 19.09.2026 15:16:59
IBM Common Licensing Agent 9.0, Agent 9.0.0.1, Agent 9.0.0.2, ART 9.0, ART 9.0.0.1, and ART 9.0.0.2 generates an error message that includes sensitive information about its environment, users, or associated data.
CVE-2026-1029
- EPSS 0.23%
- Veröffentlicht 18.09.2026 15:51:00
- Zuletzt bearbeitet 18.09.2026 18:17:47
IBM Common Licensing Agent 9.0, Agent 9.0.0.1, Agent 9.0.0.2, ART 9.0, ART 9.0.0.1, and ART 9.0.0.2 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended fun...
CVE-2026-1025
- EPSS 0.25%
- Veröffentlicht 18.09.2026 15:49:55
- Zuletzt bearbeitet 19.09.2026 15:16:59
IBM Common Licensing Agent 9.0, Agent 9.0.0.1, Agent 9.0.0.2, ART 9.0, ART 9.0.0.1, and ART 9.0.0.2 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended fun...
- EPSS 0.25%
- Veröffentlicht 18.09.2026 15:38:37
- Zuletzt bearbeitet 21.09.2026 13:17:06
IBM Common Licensing Agent 9.0, Agent 9.0.0.1, Agent 9.0.0.2, ART 9.0, ART 9.0.0.1, and ART 9.0.0.2 is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a user that t...
CVE-2026-19543
- EPSS 0.17%
- Veröffentlicht 14.09.2026 18:26:13
- Zuletzt bearbeitet 16.09.2026 19:22:22
IBM Common Licensing Agent 9.0, Agent 9.0.0.1, Agent 9.0.0.2, ART 9.0, ART 9.0.0.1, and ART 9.0.0.2 performs input validation exclusively on the client side and fails to enforce the same restrictions on the server side. An attacker can modify request...
CVE-2026-19646
- EPSS 0.52%
- Veröffentlicht 10.09.2026 22:16:55
- Zuletzt bearbeitet 11.09.2026 18:16:56
IBM Common Licensing Agent 9.0, Agent 9.0.0.1, Agent 9.0.0.2, ART 9.0, ART 9.0.0.1, and ART 9.0.0.2 could allow a remote attacker to redirect users to an arbitrary domain due to improper validation of the HTTP Host header.
CVE-2023-50945
- EPSS 0.14%
- Veröffentlicht 26.01.2025 16:15:30
- Zuletzt bearbeitet 11.03.2025 18:10:30
IBM Common Licensing 9.0 stores user credentials in plain clear text which can be read by a local user.
CVE-2023-50946
- EPSS 0.27%
- Veröffentlicht 26.01.2025 16:15:30
- Zuletzt bearbeitet 11.03.2025 18:03:46
IBM Common Licensing 9.0 could allow an authenticated user to modify a configuration file that they should not have access to due to a broken authorization mechanism.